Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

3494 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Medium5.5Red Hat Updated

Medium [CVE-2026-75485] cluster Proxy object dumped raw, bypassing inspect redaction of proxy basic-auth credentials

cluster Proxy object dumped raw, bypassing inspect redaction of proxy basic-auth credentials. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-532. Red Hat lists fixing advisory RHSA-2026:60391 with package rhacm2/acm-must-gather-rhel9:1787238730, rhacm2/acm-must-gather-rhel9:1787263322, rhacm2/acm-must-gather-rhel9:1787260453, rhacm2/acm-must-gather-rhel9:1787228698. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.11; Red Hat Advanced Cluster Management for Kubernetes 2.13; Red Hat Advanced Cluster Management for Kubernetes 2.14; Red Hat Advanced Cluster Management for Kubernetes 2.15; and 2 more. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.16; Red Hat Advanced Cluster Management for Kubernetes 2.17.

CVE-2026-75485
Unclassified
Aug 18, 2026
Medium5.5Red Hat Updated

Medium [CVE-2026-73834] embedded Secret data in ACM wrapper CRs collected without redaction

embedded Secret data in ACM wrapper CRs collected without redaction. Red Hat rates this moderate (CVSS 5.5). Weakness: CWE-312. Red Hat lists fixing advisory RHSA-2026:60391 with package rhacm2/acm-must-gather-rhel9:1787238730, rhacm2/acm-must-gather-rhel9:1787263322, rhacm2/acm-must-gather-rhel9:1787260453, rhacm2/acm-must-gather-rhel9:1787228698. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.11; Red Hat Advanced Cluster Management for Kubernetes 2.13; Red Hat Advanced Cluster Management for Kubernetes 2.14; Red Hat Advanced Cluster Management for Kubernetes 2.15; and 2 more. Affected products named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.16; Red Hat Advanced Cluster Management for Kubernetes 2.17.

CVE-2026-73834
Unclassified
Aug 18, 2026
Medium6.3Red Hat

Medium [CVE-2026-75032] Out-of-bounds read in AVRCP parse_media_element and parse_media_folder

Out-of-bounds read in AVRCP parse_media_element and parse_media_folder. Red Hat rates this moderate (CVSS 6.3). Weakness: CWE-125. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-75032
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74989] Internally found bugs fixed in Firefox 154

Internally found bugs fixed in Firefox 154. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-825.

CVE-2026-74989
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74966] Information disclosure in the Form Autofill component

Information disclosure in the Form Autofill component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-359.

CVE-2026-74966
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74968] Site isolation issue in the Graphics: WebRender component

Site isolation issue in the Graphics: WebRender component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-501.

CVE-2026-74968
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74970] Site isolation issue in the Graphics component

Site isolation issue in the Graphics component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-501.

CVE-2026-74970
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74961] Side-channel in the Web Audio component

Side-channel in the Web Audio component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-208.

CVE-2026-74961
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74955] Privilege escalation in the Request Handling component

Privilege escalation in the Request Handling component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-551.

CVE-2026-74955
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74956] Same-origin policy bypass in the DOM: Service Workers component

Same-origin policy bypass in the DOM: Service Workers component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-346.

CVE-2026-74956
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74954] Information disclosure due to side-channel in the Storage: Cache API component

Information disclosure due to side-channel in the Storage: Cache API component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-524.

CVE-2026-74954
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74958] Information disclosure in the WebRTC component

Information disclosure in the WebRTC component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-201.

CVE-2026-74958
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74950] Privilege escalation in the Downloads API component

Privilege escalation in the Downloads API component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-648.

CVE-2026-74950
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74952] Privilege escalation in the Application Update component

Privilege escalation in the Application Update component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-250.

CVE-2026-74952
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74951] Clickjacking issue in Firefox for Android

Clickjacking issue in Firefox for Android. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-1021.

CVE-2026-74951
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74974] Same-origin policy bypass in the Graphics: ImageLib component

Same-origin policy bypass in the Graphics: ImageLib component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-346. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74974
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74973] Race condition, use-after-free in the Graphics component

Race condition, use-after-free in the Graphics component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-825. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74973
Unclassified
Aug 18, 2026
Medium6.1Red Hat

Medium [CVE-2026-74969] Use-after-free in the Layout: Text and Fonts component

Use-after-free in the Layout: Text and Fonts component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-825. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74969
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74971] Information disclosure in the DOM: UI Events & Focus Handling component

Information disclosure in the DOM: UI Events & Focus Handling component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-360. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74971
Unclassified
Aug 18, 2026
Medium6.1Red Hat Updated

Medium [CVE-2026-74972] Information disclosure in the DOM: Push Subscriptions component

Information disclosure in the DOM: Push Subscriptions component. Red Hat rates this moderate (CVSS 6.1). Weakness: CWE-201. Red Hat lists fixing advisory RHSA-2026:58897 with package firefox-0:140.14.0-1.el10_2, firefox-0:140.14.0-1.el8_10, firefox-0:140.14.0-1.el9_8. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-74972
Unclassified
Aug 18, 2026